jmpews / evilMACHO
Malicious use of macho, such as dump-runtime-macho, function-hook.
☆14Updated 7 years ago
Alternatives and similar repositories for evilMACHO:
Users that are interested in evilMACHO are comparing it to the libraries listed below
- runtime spy elf with android/linux and macho with macOS/IOS☆34Updated 7 years ago
- Inject a DyLib to an existing Mach-O file☆23Updated 9 years ago
- A NEW 64-bit JAILBREAK FOR iOS 10.3,10.3.1,10.3.2,10.3.x. (Untethered).☆42Updated 7 years ago
- Reexport symbols for Mach-O and ELF☆38Updated 6 years ago
- This tool will help to fix the Mach-O header of iOS kernel which dump from the memory. So that IDA or function symbol-related tools can l…☆22Updated 7 years ago
- IDA plugin to extract Mach-O binaries located in the disassembly or data☆19Updated 5 years ago
- Get kernel symbols on device. No jailbreak required (note: unslid addresses)☆26Updated 6 years ago
- Fun with iOS☆13Updated 11 years ago
- Simple code to trigger low hanging fruit in IOHIDFamily.kext in OS X 10.11.5☆14Updated 8 years ago
- Radare2 plugin to parse modern iOS 64-bit kernel caches☆29Updated 5 years ago
- iOS 11.1.2 kernel exploit and PoC local kernel debugger by @i41nbeer (https://bugs.chromium.org/p/project-zero/issues/detail?id=1417)☆32Updated 7 years ago
- Exposing ObjC Class Structures from LLVM☆13Updated 5 years ago
- iOS 12.0 -> 12.1.2 _kernproc and _rootvnode offsets for 16K devices☆11Updated 5 years ago
- IDA plugin to Display Mach-O headers☆20Updated 13 years ago
- iOS10~iOS13 Edition) Dump Kext information from iOS kernel cache. Applicable to the kernel which dump from memory. The disassembly framew…☆20Updated 3 years ago
- Python script to parse Objective-C header files from iOS applications and generate function hooks.☆63Updated 11 years ago
- A tool for reversing IOKit classes from the iOS 12's new kernelcache format.☆23Updated 6 years ago
- Binary Format of iOS 13 Sandbox Profile Collection☆50Updated 5 years ago
- A Python toolbox for Mach-O files analysis.☆22Updated 7 months ago
- Checks macOS for Kernel Task Port. It may help detect intrusive kexts that would leak the kernel task.☆21Updated last year
- do not debug me☆11Updated 5 years ago
- Remove and disable dylibs for mobile substrate tweaks☆16Updated 6 years ago
- Improved version of David Elliott's SerialKDPProxy☆31Updated 5 years ago
- Scripts were written by me☆19Updated 2 months ago
- Modular binary injection framework☆18Updated 5 years ago
- ☆22Updated 7 years ago
- ios kernel class tree☆23Updated 5 years ago
- Convert machine code -> assembly code & assembly code -> machine code.☆19Updated 10 months ago
- iOS Dropbear SSH☆44Updated 8 years ago
- CVE-2018-4280: Mach port replacement vulnerability in launchd on macOS 10.13.5 leading to local privilege escalation and SIP bypass.☆58Updated 6 years ago